aminer-open-academic

Pass

Audited by Gen Agent Trust Hub on Apr 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a legitimate tool for academic research, authored by AMiner. All external references and network communications target the official aminer.cn domains, which are established academic service providers.\n- [CREDENTIALS_UNSAFE]: The skill manages the AMINER_API_KEY through environment variables and includes explicit instructions for the agent to verify the token's existence without exposing its value in plain text.\n- [COMMAND_EXECUTION]: The included Python wrapper (aminer_client.py) and bash check commands are benign, using standard libraries for networking and environment verification without any unauthorized system operations.\n- [DATA_EXFILTRATION]: No data exfiltration patterns were detected. All retrieved data (paper details, scholar profiles) is used directly to fulfill the user's scholarly queries within the agent context.\n- [SAFE]: While the skill ingests untrusted academic data such as abstracts and biographies, this is a primary function of the tool and the data originates from the trusted vendor's own database, minimizing the risk of indirect prompt injection.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 20, 2026, 03:35 AM